Right - this is *ancient* news. It has ALWAYS been this way.
RADIUS authentication terminates a name on whitespace, but RADIUS
accounting doesn't do any parsing - it simply logs whatever the NAS sends
to it. And the NAS has what the user typed, not what was truncated.
RADIUS 2.0.1 UNIX solved this simply by failing ALL logins with embedded
whitespace.
-MZ
-- <URL:mailto:megazone@megazone.org> Gweep, author, webmaster, human being, me "A little nonsense now and then, is relished by the wisest men" 781-788-0130 <URL:mailto:megazone@gweep.net> <URL:http://www.megazone.org/> Hail Discordia! - To unsubscribe, email 'majordomo@livingston.com' with 'unsubscribe portmaster-radius' in the body of the message. Searchable list archive: <URL:http://www.livingston.com/Tech/archive/>